Header-based SSRF (scanner-for-debugging) fuzzing utility inspired by a HackerOne Blind SSRF report. Automates injection of Forwarded-type headers, detects time-delay behavior and 429 responses, supports authenticated flows, logs results, and optionally integrates Telegram notifications for controlled security testing.
python bug-bounty ssrf hackerone server-side-request-forgery hacktivity blind-ssrf ssrf-tool ssrf-scanner ssrf-prevention
-
Updated
Feb 21, 2026 - Python